This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

LDAP Access to Webmin based on AD Groups

Hi folks,

currently i´am trying to setup LDAP Authentication into Webmin. 
This works very well.  
But i wanted to grant persmission based on AD Groups. So if User A is within the Group UTMAdmin he gets Webmin Access. 
Any Idea how to realize this?


This thread was automatically locked due to age.
  • This can be done most easily by defining an Authorization Server based on Active Directory.  You then can define a Backend Group based on an AD Security Group and use that in 'Allowed Administrators'.

    If you are talented with Windows Server, it's also possible to do this with RADIUS.  Doing it with LDAP would be my last choice.

    In any case, you will need to sync the members of the AD Security Group to the UTM.  See the options at the bottom of the 'Advanced' tab.

    Cheers - Bob
     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA
  • If LDAP is needed, you have to create a group on the UTM based on the "memberof" attribute of your LDAP users.

    ----------
    Sophos user, admin and reseller.
    Private Setup:

    • XG: HPE DL20 Gen9 (Core i3-7300, 8GB RAM, 120GB SSD) | XG 18.0 (Home License) with: Web Protection, Site-to-Site-VPN (IPSec, RED-Tunnel), Remote Access (SSL, HTML5)
    • UTM: 2 vCPUs, 2GB RAM, 50GB vHDD, 2 vNICs on vServer (KVM) | UTM 9.7 (Home License) with: Email Protection, Webserver Protection, RED-Tunnel (server)